PT-2006-3180 · Netbsd · Netbsd
Published
2006-05-05
·
Updated
2013-09-05
·
CVE-2006-2205
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
NetBSD version 3.0
Description
The issue allows local users to cause a denial of service, resulting in a kernel crash. This is achieved by using the audiosetinfo ioctl to change the sample rate of an audio device through the
audio write function.Recommendations
For NetBSD version 3.0, consider restricting access to the
audio write function to prevent unauthorized changes to the sample rate of audio devices until a fix is available.Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Netbsd